Snippet List

Technique Language Author OS Creation Date
System Binary Proxy Execution: Rundll32 Delphi DarkCoderSc 7 months, 2 weeks
APC injection FASM32 DarkCoderSc 1 year, 3 months
Reflective DLL injection Delphi DarkCoderSc 1 year, 9 months
SMB / Named Pipes Delphi DarkCoderSc 2 years
SMB / Named Pipes C# DarkCoderSc 2 years
Right-to-Left Override (RLO) Extension Spoofing PowerShell DarkCoderSc 2 years, 1 month
C2 via FTP(S) Delphi DarkCoderSc 2 years, 3 months
C2 via FTP(S) C# DarkCoderSc 2 years, 3 months
Shortcut Hiding Python DarkCoderSc 2 years, 9 months
APC injection Delphi DarkCoderSc 3 years
APC injection Delphi DarkCoderSc 3 years
Indicator Removal: Timestomp C# DarkCoderSc 3 years, 1 month
Process Hollowing, RunPE Delphi DarkCoderSc 3 years, 2 months
ProcEnvInjection - Remote code injection by abusing process environment strings Delphi DarkCoderSc 3 years, 2 months
DLL Injection via CreateRemoteThread and LoadLibrary Delphi DarkCoderSc 3 years, 2 months
Checking Mouse Activity Delphi DarkCoderSc 3 years, 2 months
Detecting Mac Address C# DarkCoderSc 3 years, 3 months
NtQueryInformationProcess Delphi DarkCoderSc 3 years, 3 months
NtQueryInformationProcess C# DarkCoderSc 3 years, 3 months
File Melt C# DarkCoderSc 3 years, 3 months
File Melt Delphi DarkCoderSc 4 years, 6 months
Detecting Active Services Delphi DarkCoderSc 4 years, 6 months
NTFS Files Attributes Delphi DarkCoderSc 4 years, 9 months
Code Cave Python DarkCoderSc 4 years, 10 months
NtQueryObject Delphi DarkCoderSc 4 years, 11 months
NtSetInformationThread Delphi DarkCoderSc 4 years, 11 months
IsDebuggerPresent Delphi DarkCoderSc 4 years, 11 months
NtSetDebugFilterState Delphi DarkCoderSc 4 years, 11 months
OutputDebugString Delphi DarkCoderSc 5 years
SuspendThread Delphi DarkCoderSc 5 years

Filter